Computer Security
[EN] securityvulns.ru no-pyccku


Ziproxy integer overflow
Published:26.05.2010
Source:
SecurityVulns ID:10867
Type:remote
Threat Level:
6/10
Description:Integer overflows on JPEG and PNG images processing.
Affected:ZIPROXY : Ziproxy 3.0
CVE:CVE-2010-1513 (Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.)
Original documentdocumentSECUNIA, Secunia Research: Ziproxy Two Integer Overflow Vulnerabilities (26.05.2010)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod